Advertisement ยท 728 ร— 90

Posts by Andy Swift

Episode 24: Security Researchers "vs." Open Source Software with solst/ICE!

@tib3rius.bsky.social & @swiftsecur.bsky.social are joined by Solst to talk about pain points between security researchers and open source software developers.

Links below!

5 months ago 2 2 1 0

Episode 23: War Stories with Brendan Dolan-Gavitt (XBOW)!

@tib3rius.bsky.social & @swiftsecur.bsky.social are joined by @moyix.net who shares some AI and human war stories with us!

Links below!

5 months ago 5 5 1 0

Episode 22: Social Engineering, Gas Mark 4, and AGAs with Rachel Tobac!

@tib3rius.bsky.social & @swiftsecur.bsky.social are joined by @racheltobac.bsky.social to talk social engineering war stories...and more!

Links below!

5 months ago 6 4 1 0

Episode 21: The One Where They Talk About AI Again

@tib3rius.bsky.social & @swiftsecur.bsky.social talk about AI (again). How it affects our lives, vibe coding, and its increasing usefulness in Cybersecurity.

Links below!

6 months ago 3 2 1 1
Burp AI - PortSwigger Hack smarter, not harder. Seamlessly integrate trusted AI capabilities into Burp Suite - on your terms with Burp AI.

Episode 20: War Stories with Julien Richard!

@tib3rius.bsky.social & @swiftsecur.bsky.social chat with Julien Richard about his war stories!

Thank you to @portswigger.net for sponsoring today's episode! Check out portswigger.net/burp/ai to learn more about AI in Burp Suite.

Links below!

6 months ago 5 4 1 0
Post image

SAUSAGE.....those who know.....know. All will be revealed..

7 months ago 2 0 0 0

oh fuck off...while my heads been down making CTF's...I pop my head up for 5 seconds and NPM is on fire again...

7 months ago 1 0 0 0

I need sleep. Been building a CTF based around firmware reversing, crypto mishaps and a sprinkling of MQTT..because why not... for the last few days...its gunna be a wild ride in the morning when my teams gets let loose on it...good luck yawll..ill be sleeping in the corner.

7 months ago 2 0 0 0
Advertisement

Episode 19: DEF CON!

@tib3rius.bsky.social & @swiftsecur.bsky.social chat about DEF CON, the world's biggest hacker convention, which Andy attended for the first time this year!

Links below!

7 months ago 4 3 1 0

Someone asked me what I was eating for lunch, I said 'er poached eggs'....I couldn't tell them it was actually a dipping egg with soldiers.

7 months ago 1 0 0 0

eeeek

7 months ago 2 0 0 0
Preview
Oops, No Victims: The Largest Supply Chain Attack Stole 5 Cents The biggest financial impact expected to be the millions of dollars of SaaS contracts signed with security vendors

Now I'm awake and stuff.. I don't want to be dismissive of the NPM thing..sensationalist headlines help no one, some are def overhyped for clicks...but this had potential to hit different...and thats the kinda interesting bit...

This is a cool link:

www.securityalliance.org/news/2025-09...

7 months ago 1 0 0 0

Episode 18: UK Online Safety Act

@tib3rius.bsky.social & @swiftsecur.bsky.social chat with Daniel Card about the controversial UK Online Safety Act.

Links below!

7 months ago 1 2 1 0
Preview
SSHamble - New Open Source Tool to Exploit Vulnerabilities in SSH Protocol SSHamble, a powerful open-source reconnaissance tool designed to identify and exploit vulnerabilities in SSH implementations across internet-facing systems.

cybersecuritynews.com/sshamble/

This is a coolio tool, github here:

github.com/runZeroInc/s...

8 months ago 1 0 0 0

Episode 17: Common Vulnerability Scoring Sucks?

@tib3rius.bsky.social & @swiftsecur.bsky.social chat about the problems with CVSS.

Links below!

8 months ago 1 3 1 0

Episode 15: Why Can't Pentesters Scope?

@tib3rius.bsky.social & @swiftsecur.bsky.social discuss why they (pentesters) can't scope very well.

Links below!

9 months ago 2 1 1 1

So....I built a new scheduling/resourcing system for pentesters, its been a fun project...but now, the irony....it is being pentested....hold onto your hats people...this is going to be a bumpy ride ๐Ÿคฃ

#pentesting

9 months ago 1 0 0 0
Preview
New Linux Security Flaw Uses Initramfs to Inject Malware A newly found security flaw in Ubuntu could allow attackers with physical access to bypass full disk encryption. Learn how the attack works.

www.omgubuntu.co.uk/2025/07/ubun...

This is kinda interesting, maybe helpful for forensics ๐Ÿ˜†

9 months ago 0 0 0 0
Advertisement

This has been my fav so far.... @davidkuszmar.com was awesome, we got to have him back. LIGHT THE RIVER ON FIRE!

9 months ago 1 0 1 0

Episode 14: Ignore Previous Instructions & Interview David Kuszmar

@tib3rius.bsky.social & @swiftsecur.bsky.social interview AI security researcher @davidkuszmar.com about his incredible LLM jailbreaks and exploits!

Links below!

9 months ago 2 2 1 3

I dont really ask people to be references, imo security and privacy are important in our work, yet.. most large bid contracts ask for them, whats funny is the ones asking often decline to be references themselves citing security policy as the reason...vicious cycle.

9 months ago 0 0 0 0

On me way to London guv :) at the Imperial War Museum today for a bit of a workshop with some clients, fun day ahead!

9 months ago 1 0 0 0
Preview
a woman is making a funny face and says not again ALT: a woman is making a funny face and says not again

thehackernews.com/2025/06/citr...

Uh oh....

9 months ago 0 0 0 0
Preview
Citrix Patches Critical Vulns in NetScaler ADC and Gateway Citrix is recommending its customers upgrade their appliances to mitigate potential exploitation of the vulnerabilities.

www.darkreading.com/vulnerabilit...

ahhh here we go again :) This is giving me serious PTSD, last time out the IR bat signal was on constantly for a good few weeks ๐Ÿ˜‚

No evidence of wild exploitation yet apparently...but still.

9 months ago 1 0 0 0

"If you need legal consultation regarding your target, simply click the 'Call lawyer' button located within the target interface, and our legal team will contact you privately to provide qualified legal support,"

This is amazing.

9 months ago 0 0 0 0
Preview
Qilin Ransomware Adds "Call Lawyer" Feature to Pressure Victims for Larger Ransoms Qilin ransomware intensifies, offering legal counsel to affiliates, rising as a top cybercrime platform with 304 victims in 2025.

thehackernews.com/2025/06/qili...

lol wtf is this.... ๐Ÿคฃ

9 months ago 0 0 1 0
Post image

I've always found it works best not to use non-existent settings..

9 months ago 0 0 0 0
Advertisement

Episode 13: US Tech Market Dominance

@tib3rius.bsky.social & @swiftsecur.bsky.social chat about why the US tech and cybersecurity markets are so dominant in the world. Prepare for some hot takes. ๐Ÿ”ฅ๐Ÿฅต

Links below!

10 months ago 4 3 1 0
Preview
Critical Linux Privilege Escalation Vulnerabilities Let Attackers Gain Full Root Access Two critical, interconnected flaws, CVE-2025-6018 and CVE-2025-6019, enable unprivileged attackers to achieve root access on major Linux distributions.

cybersecuritynews.com/linux-privil...

Few big ones for Linux...one is all Suse but the other is a lil more interesting LPE.

10 months ago 0 0 0 0
Post image

uh huh ๐Ÿ‘

10 months ago 0 0 0 0